RE: [Full-Disclosure] An anatomy of a PGP Joe Job

From: Aditya, ALD [Aditya Lalit Deshmukh] (aditya.deshmukh_at_online.gateway.technolabs.net)
Date: 05/30/04

  • Next message: idlabs-advisories_at_idefense.com: "[Full-Disclosure] iDEFENSE Security Advisory 05.27.04: 3Com OfficeConnect Remote 812 ADSL Router Authentication Bypass Vulnerability"
    To: "Gadi Evron" <ge@egotistical.reprehensible.net>, "Full-Disclosure" <full-disclosure@lists.netsys.com>
    Date: Sun, 30 May 2004 09:31:56 +0530
    
    

    >
    > Due to knowing that many viruses and kiddies spoof my email address on a
    > regular bases, I signed the post.

    that is a good way but now we have to actually verify the pgp sig at the spamassain or other spam filtering system that we use.

    also the bayseian analysis would work for the time being if told to detect the random yahoogroup words but i think the spammers would soon start making sure that all the headers have the same group name.

    >
    > That signature was my signature from the spam mailing list.

    are the group of people we call spammers are finally gaining some intelligance ?
     
    > Irony? Attempted Pay-back? Oh well.

    may i call it an attempt to reduce your credibility on the net ?

    -aditya

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: idlabs-advisories_at_idefense.com: "[Full-Disclosure] iDEFENSE Security Advisory 05.27.04: 3Com OfficeConnect Remote 812 ADSL Router Authentication Bypass Vulnerability"